
CVE-2022-37969 – Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2022-37969
13 Sep 2022 — Windows Common Log File System Driver Elevation of Privilege Vulnerability Una vulnerabilidad de Elevación de Privilegios en Windows Common Log File System Driver. Este ID de CVE es diferente de CVE-2022-35803 Microsoft Windows Common Log File System (CLFS) driver contains an unspecified vulnerability that allows for privilege escalation. • https://github.com/fortra/CVE-2022-37969 • CWE-787: Out-of-bounds Write •

CVE-2022-24494 – Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2022-24494
15 Apr 2022 — Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Una vulnerabilidad de Elevación de Privilegios en Windows Ancillary Function Driver for WinSock • https://github.com/vportal/AFD •

CVE-2022-24481 – Windows Common Log File System Driver Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2022-24481
15 Apr 2022 — Windows Common Log File System Driver Elevation of Privilege Vulnerability Una vulnerabilidad de Elevación de Privilegios de Windows Common Log File System Driver. • https://github.com/fr4nkxixi/CVE-2022-24481-POC •

CVE-2021-44226 – Razer Synapse Race Condition / DLL Hijacking
https://notcve.org/view.php?id=CVE-2021-44226
23 Mar 2022 — As a result, local Windows users can abuse the Razer driver installer to obtain administrative privileges on Windows. • https://packetstorm.news/files/id/174696 • CWE-427: Uncontrolled Search Path Element •

CVE-2022-21877 – Storage Spaces Controller Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2022-21877
11 Jan 2022 — Storage Spaces Controller Information Disclosure Vulnerability Una vulnerabilidad de Divulgación de Información de Storage Spaces Controller This vulnerability allows local attackers to disclose sensitive information on affected installations of Microsoft Windows. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the spaceport.sys driver. • https://github.com/Big5-sec/cve-2022-21877 • CWE-125: Out-of-bounds Read •

CVE-2021-43226 – Windows Common Log File System Driver Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2021-43226
15 Dec 2021 — Windows Common Log File System Driver Elevation of Privilege Vulnerability Una vulnerabilidad de Elevación de Privilegios de Windows Common Log File System Driver. • https://github.com/Rosayxy/cve-2021-43226PoC •

CVE-2021-43224 – Windows Common Log File System Driver Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2021-43224
15 Dec 2021 — Windows Common Log File System Driver Information Disclosure Vulnerability Una vulnerabilidad de Divulgación de Información de Windows Common Log File System Driver • https://github.com/KaLendsi/CVE-2021-43224-POC •

CVE-2021-41285
https://notcve.org/view.php?id=CVE-2021-41285
04 Oct 2021 — Ballistix MOD Utility through 2.0.2.5 is vulnerable to privilege escalation in the MODAPI.sys driver component. • https://github.com/VoidSec/Exploit-Development/blob/master/windows/x64/kernel/crucial_Ballistix_MOD_Utility_v.2.0.2.5/crucial_Ballistix_MOD_Utility_v.2.0.2.5_memory_dump_PoC.cpp •

CVE-2021-36955 – Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2021-36955
15 Sep 2021 — Windows Common Log File System Driver Elevation of Privilege Vulnerability Una Vulnerabilidad de Elevación de Privilegios de Windows Common Log File System Driver. Este CVE ID es diferente de CVE-2021-36963, CVE-2021-38633 Microsoft Windows Common Log File System (CLFS) driver contains an unspecified vulnerability that allows for privilege escalation. • https://github.com/JiaJinRong12138/CVE-2021-36955-EXP •

CVE-2021-32537 – Realtek High definition audio Windows driver crashed
https://notcve.org/view.php?id=CVE-2021-32537
07 Jul 2021 — Realtek HAD contains a driver crashed vulnerability which allows local side attackers to send a special string to the kernel driver in a user’s mode. Due to unexpected commands, the kernel driver will cause the system crashed. • https://packetstorm.news/files/id/163498 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •